Actions
Bug #10737
closedFRR attempts to cycle IPsec VTI interfaces even when disabled/not running
Start date:
07/07/2020
Due date:
% Done:
100%
Estimated time:
Plus Target Version:
Affected Version:
Affected Plus Version:
Affected Architecture:
Description
If FRR is installed but disabled or otherwise not running, frr_ipsec_reload()
will still attempt to send an FRR control command which will block because FRR is not running. This can cause issues when attempting to apply IPsec settings (#10736).
At a minimum, frr_ipsec_reload()
should check if the zebra daemon is running before attempting to issue its command(s).
Actions